TrickBot slowly phases out

TrickBot slowly phases out

The operators of TrickBot have shut down the notorious malware, but evidence suggests the gang has begun using other platforms or folded operations into another cybercrime group altogether. Researchers at…
New BazarLoader TTP

New BazarLoader TTP

BazarLoader, the nasty information stealer, is now using new delivery methods that include compromised software installers and ISO files. The variations in the arrival mechanism seem to be an attempt…
BazarLoader Used for Reconnaissance

BazarLoader Used for Reconnaissance

A BazarLoader Windows malware campaign has been detected hosting one of their malicious files on Microsoft’s OneDrive service. This BazarLoader Windows malware enables the threat actors backdoor access and network…
Bazar Backdoor’s New Trick

Bazar Backdoor’s New Trick

A new phishing campaign has been discovered delivering the BazarBackdoor malware. The campaign is using the multi-compression method to hide the malware as an image file. This method can trick…
BazaCall  📞 Dials to Harm

BazaCall 📞 Dials to Harm

Microsoft is warning Office users of a new malware campaign, called BazaCall involving fake subscriptions, fraudulent call centers, and a malicious Excel spreadsheet identified had human operated attacks and Ransomware…
Bazar Backdoor bypasses

Bazar Backdoor bypasses

Threat actors using BazarBackdoor used an unusual combination of lures, tactics, and networks to target corporate customers. Threat perpetrators use the victims' own initiative to get through security barriers and…
TA800.. Nimza Loader SpearPhised

TA800.. Nimza Loader SpearPhised

The TA800 threat group is distributing a malware loader, which researchers call NimzaLoader, via ongoing, highly-targeted spear-phishing emails has its own separate string-decryption methods and hashing algorithm techniques. “Malware developers may…